Talent.com
Senior Application Security Engineer
Senior Application Security EngineerCox Automotive • Tucker, GA, United States
Senior Application Security Engineer

Senior Application Security Engineer

Cox Automotive • Tucker, GA, United States
10 hours ago
Job type
  • Full-time
Job description

Join our dynamic team as a Senior Application Security Engineer, where you'll play a pivotal role in partnering with Security Engineering Enablement and Security Architecture to design and deliver secure software. You will engage in secure code reviews and help define essential requirements for pre-release security validations including SAST, DAST, SCA, API security, and Container / IaC scans.

As a key player in our Center of Excellence (COE) for Application Security, Web Application Firewalls, and Cloud Security, you'll provide expert advice and guidance to teams, supporting established standards and policies through initiatives like Office Hours, Brown Bags, and consultation sessions.

Primary Responsibilities :

  • Operate and enhance our Application Security and Cloud Security tools, managing aspects like user onboarding, policy configurations, and integrations.
  • Triage vulnerabilities from various sources (SAST, DAST, SCA, API, IaC, CSPM) and manage false positive reviews with robust audit trails.
  • Collaborate with Cloud Platform teams to strengthen AWS, Azure, and GCP environments using CSPM controls and best practices for secure serverless and container solutions.
  • Support the administration and maintenance of the AppSec / CloudSec / WAF tools, ensuring optimal performance and reliability.
  • Continuously assess and evaluate security tools to ensure alignment with our evolving needs.
  • Serve as the first point of contact for Responsible Disclosure submissions, reproducing issues, assessing severity, and coordinating remediation efforts.
  • Maintain clear communication with Responsible Disclosure reporters and internal stakeholders while ensuring compliance through accurate record-keeping.
  • Utilize scripting and automation (preferably Python, along with PowerShell, Bash) for operational efficiencies and to minimize manual efforts.
  • Be a stakeholder in designing Secure Pipelines in collaboration with the Security Engineering Enablement team.

Minimum Qualifications :

  • Bachelor's degree in a related field and 6 years of related experience, or equivalent combinations of education and experience.
  • At least 2 years of experience in Application / Product security or software engineering with a strong security emphasis.
  • Hands-on experience with modern SDLC / DevSecOps in cloud-native environments including microservices, APIs, and containers.
  • Proficient in operating and tuning security tools such as SAST, DAST, SCA, API testing, and IaC scanners.
  • Skilled in scripting / automation and REST API integrations.
  • In-depth knowledge of OWASP Top 10 and common web / API vulnerabilities with a focus on secure design patterns.
  • Experience in managing responsible disclosure or bug bounty program reports.
  • Excellent communication skills with a proven ability to simplify complex risks for diverse audiences.
  • Familiarity with software supply chain security and runtime protection methods.
  • Strong grasp of cloud architecture and security best practices.
  • Collaborate effectively with AI systems for software development and deployment.
  • Implement AI-driven features and engage in prompt engineering experimentation, sharing insights on tool usage.
  • Define coding standards and ethical guidelines for AI use within development practices.
  • Mentor colleagues and guide junior team members regarding AI-enhanced development techniques.
  • Applicants must currently be authorized to work in the United States for any employer without sponsorship.
  • Preferred Skills :

  • Experience in WAF engineering and related security policy design.
  • Relevant certifications (CISSP, CSSLP, GWAPT, GCSA, GCP / AWS / Azure security) are beneficial.
  • Familiarity with API security and proactive threat response mechanisms is a plus.
  • The position is located at [insert precise work address here].

    Compensation :

    Compensation includes a base salary ranging from $119,600 to $199,400, influenced by various factors such as location and individual qualifications. Additional compensation opportunities may include an incentive program.

    Benefits :

    Our company offers flexible vacation policies, seven paid holidays, up to 160 hours of paid wellness annually, and additional paid time off for various life circumstances including bereavement, voting, jury duty, volunteering, military service, and parental leave.

    Create a job alert for this search

    Application Security Engineer • Tucker, GA, United States

    Related jobs
    Enterprise Security Engineer, IAM (US Remote)

    Enterprise Security Engineer, IAM (US Remote)

    First Advantage • Atlanta, GA, US
    Remote
    Full-time
    Quick Apply
    FA), people are at the heart of everything we do.From our customers and partners to our greatest advantage — our team members. Operating with empathy and compassion, First Advantage fosters a ...Show more
    Last updated: 7 days ago
    Senior Application Security Engineer

    Senior Application Security Engineer

    ImagineX Consulting • Atlanta, GA, United States
    Full-time
    ImagineX is a tech company that deploys AI-assisted teams to build and secure mission-critical enterprise solutions with our clients – spanning software, cybersecurity, data, and AI.Structured like...Show more
    Last updated: 1 day ago • Promoted
    Software Engineer, Security

    Software Engineer, Security

    Coinbase • Atlanta, GA, United States
    Full-time
    Ready to be pushed beyond what you think you’re capable of?.At Coinbase, our mission is to increase economic freedom in the world. It’s a massive, ambitious opportunity that demands the best of us, ...Show more
    Last updated: 1 day ago • Promoted
    Lead Application Security Engineer - 19562

    Lead Application Security Engineer - 19562

    Cox Automotive • Panthersville, GA, US
    Full-time
    The Lead Application Security Engineer will partner with Security Engineering Enablement and Security Architecture to design and ship secure software : secure code reviews and help define requiremen...Show more
    Last updated: 7 hours ago • Promoted • New!
    Application Security Analyst

    Application Security Analyst

    VirtualVocations • Norcross, Georgia, United States
    Full-time
    A company is looking for an Application Security Analyst (Remote).Key Responsibilities Assist in the support and documentation of DAST, IaC, SAST, and SCA solutions, including operational process...Show more
    Last updated: 30+ days ago • Promoted
    Senior Engineer - Application Security

    Senior Engineer - Application Security

    Confluent • Atlanta, GA, United States
    Full-time
    At Confluent, we are more than just a tech company; we are reshaping how data travels and what it can achieve.Our platform enables real-time data streaming, empowering companies to respond swiftly,...Show more
    Last updated: 1 day ago • Promoted
    Principal Application Security Architect

    Principal Application Security Architect

    ADP • Alpharetta, GA, United States
    Full-time
    ADP is hiring an experienced Principal Application Security Architect.We are seeking a highly skilled and experienced Application Security Architect to join our team. You will join the Product Secur...Show more
    Last updated: 1 day ago • Promoted
    Network Security Architect

    Network Security Architect

    Warner Bros. Discovery • Atlanta, Georgia, United States
    Full-time
    Discovery, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly.Discovery… the stuff dreams are...Show more
    Last updated: 14 days ago • Promoted
    FedNow Senior Cyber Security Architect

    FedNow Senior Cyber Security Architect

    Federal Reserve Bank of Boston • Atlanta,, GA, United States
    Full-time +1
    Federal Reserve Bank of Boston.Federal Reserve Financial Services (FRFS) delivers a suite of payments services to financial institutions via FedLine Solutions, FedNowSM, Fedwire, National Settlemen...Show more
    Last updated: 18 hours ago • Promoted • New!
    State Licensed Senior Security Architect

    State Licensed Senior Security Architect

    VirtualVocations • Decatur, Georgia, United States
    Permanent
    Security Architect to lead the design and implementation of secure enterprise and AI-driven architectures.Key Responsibilities Architect and design secure solutions for AI, data analytics, and cl...Show more
    Last updated: 1 day ago • Promoted
    Architect, Information Security, IAM

    Architect, Information Security, IAM

    Edwards Lifesciences • Atlanta, GA, United States
    Full-time
    Innovation starts from the heart.At Edwards Lifesciences, we're dedicated to developing ground-breaking technologies with a genuine impact on patients' lives. At the core of this commitment is our i...Show more
    Last updated: 1 day ago • Promoted
    Cyber Warfare Technician

    Cyber Warfare Technician

    U.S. Navy • Suwanee, GA, US
    Full-time +1
    To be eligible to enlist in the U.Navy, candidates must be between the ages of 18-34.As a Cryptologic Technician, you are one of the worlds greatest problem-solvers. Were looking for people with sha...Show more
    Last updated: 1 day ago • Promoted
    DevSecOps Security Architect

    DevSecOps Security Architect

    VirtualVocations • Alpharetta, Georgia, United States
    Full-time
    A company is looking for a DevSecOps Senior Lead Security Architect.Key Responsibilities Lead security risk assessments and provide recommendations for risk mitigation across enterprise and produ...Show more
    Last updated: 4 days ago • Promoted
    Senior Security Solutions Architect

    Senior Security Solutions Architect

    VirtualVocations • Marietta, Georgia, United States
    Full-time
    A company is looking for a Senior Security Solutions Engineer specializing in Zero Trust and Cloud Security.Key Responsibilities Partner with sales teams to drive pipeline and close deals for Zsc...Show more
    Last updated: 5 days ago • Promoted
    Junior Cybersecurity Engineer

    Junior Cybersecurity Engineer

    VirtualVocations • Alpharetta, Georgia, United States
    Full-time
    A company is looking for a Junior Cybersecurity Engineer (Top Secret).Key Responsibilities Deploy and integrate cybersecurity tools and technologies for mission-critical systems Troubleshoot and...Show more
    Last updated: 4 days ago • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    iO Associates • Atlanta, GA, United States
    Full-time
    O Associates has partnered with an innovative technology consultancy known for its entrepreneurial culture, collaborative mindset, and commitment to empowering its consultants to own their way of w...Show more
    Last updated: 1 day ago • Promoted
    Security Software Engineer

    Security Software Engineer

    ShiftCode Analytics • Alpharetta, GA, United States
    Full-time
    Visa : USC, GC, GC EAD, H4, L2.This is hybrid from day-1 ( Need only local candidates ).We are looking for a security engineer to help build our client's next generation Policy Based Access Control...Show more
    Last updated: 1 day ago • Promoted
    Application Security

    Application Security

    ClifyX • Alpharetta, GA, United States
    Full-time
    Application Security (Fortify & Web Inspect) Client.Client Bill Rate 60 / hr Location : Alpharetta, GA Total Positions : 6. Hands on experience with security testing tools including Fortify, WebInspect,...Show more
    Last updated: 1 day ago • Promoted